Permit-to-work

Last updated

Permit-to-work (PTW) refers to a management system procedure used to ensure that work is done safely and efficiently. It is used in hazardous industries, such as process and nuclear plants, usually in connection with maintenance work. [1] It involves procedured request, review, authorization, documenting and, most importantly, de-conflicting of tasks to be carried out by front line workers. It ensures affected personnel are aware of the nature of the work and the hazards associated with it, all safety precautions have been put in place before starting the task, and the work has been completed correctly. [1]

Contents

Implementation

Instructions or procedures are often adequate for most work activities, but some require extra care. A permit-to-work system is a formal system stating exactly what work is to be done, where, and when.

Permit-to-work is an essential part of control of work (CoW), a structured communication mechanism to reliably communicate information about hazards, control measures, and so on. During critical maintenance activities, good communication between management, supervisors, operators, and maintenance staff and contractors is essential. [2]

Permit-to-work is also a core element of integrated safe system of work (ISSOW) systems, that along with risk assessment and isolation planning, enable as low as reasonably practicable (ALARP) reduction of unsafe activities in non-trivial work environments. Permit-to-work adherence is essential in process safety management.

Examples of high-risk jobs where a written permit-to-work procedure may need to be used include hot work (such as welding), confined space entry, cutting into pipes carrying hazardous substances (breaking containment), diving in the vicinity of intake openings, and work that requires electrical or mechanical isolation.

A permit-to-work is not a replacement for robust risk assessment, but can help provide context for the risk of the work to be done. Studies by the U.K. Health and Safety Executive have shown that the most significant cause of maintenance-related accidents in the U.K. chemical industry was a failure to implement effective permit-to-work systems. [3] Common failures in control of work systems are a failure to follow the permit-to-work or isolation management procedures, risk assessments that are not suitable and sufficient to identify the risks, and/or the control measures and a combination of the two. [4]

PTW is a means of coordinating different work activities to avoid conflicts. Its implementation usually involves the use of incompatible operations matrices to manage simultaneous operations (SIMOPS), thus preventing conflicting short-term activities of different workgroups that may present hazardous interference. For example, PTW can preclude one workgroup welding or grinding in the vicinity of another venting explosive or flammable gases.

A responsible person should assess the work and check safety at each stage. The people doing the job sign the permit to show that they understand the risks and precautions necessary. Ideally one person should be delegated with the responsibility of PTW authorization at any one time, and all workers at the facility should be fully aware of who that person is and when the responsibility is transferred.

A permit to work form typically contains these items: [5]

Once a PTW has been issued to a workgroup, a lock-out tag-out system is used to restrict equipment state changes such as valve operations until the work specified in the permit is complete. Since the permit-to-work is the primary de-conflictation tool, all non-routine work activities in high-risk environments should have a PTW.

Historically, permit-to-work has been paper-based. Electronic permit-to-work (ePTW) systems have been developed since the early 1980s as an alternative to paper permit-to-work methods. [6]

Historical examples of manual permit to work failures

USS Guitarro, a submarine of the United States Navy, sank alongside when two independent work groups repeatedly flooded ballast tanks in an attempt to achieve conflicting objectives of zero trim and two degree bow-up trim; a result of failing to have a single person aware of and authorising all simultaneous activities by a permit to work system. [7]

HMS Artemis, a submarine of the Royal Navy, sank alongside when activities of ballast management and watertight integrity were uncontrolled and without oversight. [8]

Occidental Petroleum's Piper Alpha platform was destroyed on the 6th July 1988 by explosion and fire, after a shift reinstated a system left partially disassembled by the previous shift. 167 men died in this incident due to failure to properly communicate permit state at shift handover. [9]

Examples of legislative and industry association guidelines

Related Research Articles

<span class="mw-page-title-main">Safety engineering</span> Engineering discipline which assures that engineered systems provide acceptable levels of safety

Safety engineering is an engineering discipline which assures that engineered systems provide acceptable levels of safety. It is strongly related to industrial engineering/systems engineering, and the subset system safety engineering. Safety engineering assures that a life-critical system behaves as needed, even when components fail.

<span class="mw-page-title-main">Oil refinery</span> Facility that processes crude oil

An oil refinery or petroleum refinery is an industrial process plant where petroleum is transformed and refined into products such as gasoline (petrol), diesel fuel, asphalt base, fuel oils, heating oil, kerosene, liquefied petroleum gas and petroleum naphtha. Petrochemical feedstock like ethylene and propylene can also be produced directly by cracking crude oil without the need of using refined products of crude oil such as naphtha. The crude oil feedstock has typically been processed by an oil production plant. There is usually an oil depot at or near an oil refinery for the storage of incoming crude oil feedstock as well as bulk liquid products. In 2020, the total capacity of global refineries for crude oil was about 101.2 million barrels per day.

<span class="mw-page-title-main">Safety-critical system</span> System whose failure would be serious

A safety-critical system or life-critical system is a system whose failure or malfunction may result in one of the following outcomes:

<span class="mw-page-title-main">Piper Alpha</span> Oil platform destroyed by explosion and fire in 1988

Piper Alpha was an oil platform located in the North Sea about 120 miles (190 km) north-east of Aberdeen, Scotland. It was operated by Occidental Petroleum (Caledonia) Limited (OPCAL) and began production in December 1976, initially as an oil-only platform, but later converted to add gas production.

<span class="mw-page-title-main">Flixborough disaster</span> Industrial accident in North Lincolnshire, England (1974)

The Flixborough disaster was an explosion at a chemical plant close to the village of Flixborough, North Lincolnshire, England, on 1 June 1974. It killed 28 and seriously injured 36 of the 72 people on site at the time. The casualty figures could have been much higher if the explosion had occurred on a weekday, when the main office area would have been occupied. A contemporary campaigner on process safety wrote "the shock waves rattled the confidence of every chemical engineer in the country".

<span class="mw-page-title-main">Chemical hazard</span> Non-biological hazards of hazardous materials

Chemical hazards are typical of hazardous chemicals and hazardous materials in general. Exposure to certain chemicals can cause acute or long-term adverse health effects. Chemical hazards are usually classified separately from biological hazards (biohazards). Main classifications of chemical hazards include asphyxiants, corrosives, irritants, sensitizers, carcinogens, mutagens, teratogens, reactants, and flammables. In the workplace, exposure to chemical hazards is a type of occupational hazard. The use of protective personal equipment (PPE) may substantially reduce the risk of damage from contact with hazardous materials.

Process Safety Managementof Highly Hazardous Chemicals is a regulation promulgated by the U.S. Occupational Safety and Health Administration (OSHA). It defines and regulates a process safety management (PSM) program for plants using, storing, manufacturing, handling or carrying out on-site movement of hazardous materials above defined amount thresholds. Companies affected by the regulation usually build a compliant process safety management system and integrate it in their safety management system. Non-U.S. companies frequently choose on a voluntary basis to use the OSHA scheme in their business.

<span class="mw-page-title-main">Texas City refinery explosion</span> 2005 deadly refinery accident

The Texas City refinery explosion occurred on March 23, 2005, when a flammable hydrocarbon vapor cloud ignited and violently exploded at the isomerization process unit of the BP oil refinery in Texas City, Texas, killing 15 workers, injuring 180 others and severely damaging the refinery. All the fatalities were contractors working out of temporary buildings located close to the unit to support turnaround activities. Property loss was $200 million. When including costs of repairs, deferred production, fines and settlements, the explosion is the world's costliest refinery accident.

<span class="mw-page-title-main">Lockout–tagout</span> Safe isolation of dangerous equipment during maintenance or testing

Lock out, tag out or lockout–tagout (LOTO) is a safety procedure used to ensure that dangerous equipment is properly shut off and not able to be started up again prior to the completion of maintenance or repair work. It requires that hazardous energy sources be "isolated and rendered inoperative" before work is started on the equipment in question. The isolated power sources are then locked and a tag is placed on the lock identifying the worker and reason the LOTO is placed on it. The worker then holds the key for the lock, ensuring that only they can remove the lock and start the equipment. This prevents accidental startup of equipment while it is in a hazardous state or while a worker is in direct contact with it.

<span class="mw-page-title-main">1998 Esso Longford fire</span> 1998 industrial disaster in Victoria, Australia

On 25 September 1998 a catastrophic accident occurred at the Esso natural gas plant in Longford, Victoria, Australia. A pressure vessel ruptured resulting in a serious jet fire, which escalated to a conflagration extending to a large part of the plant. Fires lasted two days before they were finally extinguished.

Integrated safe system of work (ISSOW) is used in hazardous industry to request, review, approve and document tasks to be carried out by frontline workers. It integrates permit-to-work, risk assessment and isolation management under a single electronic system, providing safety improvements to the user.

The International Association of Oil & Gas Producers (IOGP) is the petroleum industry's global forum in which members identify and share best practices to achieve improvements in health, safety, the environment, security, social responsibility, engineering and operations.

Process safety is an interdisciplinary engineering domain focusing on the study, prevention, and management of large-scale fires, explosions and chemical accidents in process plants or other facilities dealing with hazardous materials, such as refineries and oil and gas production installations. Thus, process safety is generally concerned with the prevention of, control of, mitigation of and recovery from unintentional hazardous materials releases that can have a serious effect to people, plant and/or the environment.

On 23 October, 1989 at approximately 1:05 PM Central Daylight Time, a series of explosions occurred at Phillips Petroleum Company's Houston Chemical Complex in Pasadena, Texas, near the Houston Ship Channel. The initial blast registered 3.5 on the Richter scale, and the resulting fires took 10 hours to bring under control, as efforts to battle the fire were hindered due to damaged water pipes for the fire hydrants from the blast. The initial explosion was found to have resulted from a release of extremely flammable process gasses used to produce high-density polyethylene, a plastic used for various consumer food container products. The US Occupational Safety and Health Administration fined Phillips Petroleum Company $5,666,200 and fined Fish Engineering and Construction, inc, the maintenance contractor, $729,600. The event killed 23 employees and injured 314.

<span class="mw-page-title-main">Offshore oil spill prevention and response</span>

Offshore oil spill prevention and response is the study and practice of reducing the number of offshore incidents that release oil or hazardous substances into the environment and limiting the amount released during those incidents.

<span class="mw-page-title-main">Commercial offshore diving</span> Professional diving in support of the oil and gas industry

Commercial offshore diving, sometimes shortened to just offshore diving, generally refers to the branch of commercial diving, with divers working in support of the exploration and production sector of the oil and gas industry in places such as the Gulf of Mexico in the United States, the North Sea in the United Kingdom and Norway, and along the coast of Brazil. The work in this area of the industry includes maintenance of oil platforms and the building of underwater structures. In this context "offshore" implies that the diving work is done outside of national boundaries. Technically it also refers to any diving done in the international offshore waters outside of the territorial waters of a state, where national legislation does not apply. Most commercial offshore diving is in the Exclusive Economic Zone of a state, and much of it is outside the territorial waters. Offshore diving beyond the EEZ does also occur, and is often for scientific purposes.

<span class="mw-page-title-main">OREDA</span>

The Offshore and Onshore Reliability Data (OREDA) project was established in 1981 in cooperation with the Norwegian Petroleum Directorate. It is "one of the main reliability data sources for the oil and gas industry" and considered "a unique data source on failure rates, failure mode distribution and repair times for equipment used in the offshore industr[y]. OREDA's original objective was the collection of petroleum industry safety equipment reliability data. The current organization, as a cooperating group of several petroleum and natural gas companies, was established in 1983, and at the same time the scope of OREDA was extended to cover reliability data from a wide range of equipment used in oil and gas exploration and production (E&P). OREDA primarily covers offshore, subsea and topside equipment, but does also include some onshore E&P, and some downstream equipment as well.

Engineering controls are strategies designed to protect workers from hazardous conditions by placing a barrier between the worker and the hazard or by removing a hazardous substance through air ventilation. Engineering controls involve a physical change to the workplace itself, rather than relying on workers' behavior or requiring workers to wear protective clothing.

<span class="mw-page-title-main">Hazmat diving</span> Underwater diving in a known hazardous materials environment

Hazmat diving is underwater diving in a known hazardous materials environment. The environment may be contaminated by hazardous materials, the diving medium may be inherently a hazardous material, or the environment in which the diving medium is situated may include hazardous materials with a significant risk of exposure to these materials to members of the diving team. Special precautions, equipment and procedures are associated with hazmat diving so that the risk can be reduced to an acceptable level.

References

  1. 1 2 Mannan, Sam (2012). Lees' Loss Prevention in the Process Industries (4th ed.). Oxford: Butterworth-Heinemann. ISBN   978-0-12-397210-1.
  2. Mitchell, J. (2016). Edmonds, Janette (ed.). Human Factors in the Chemical and Process Industries. Amsterdam etc.: Elsevier. ISBN   978-0-12-803806-2.
  3. Staff. "HID Inspection Guide Offshore - Inspection of Control of Work arrangements" (PDF). HSE.gov.uk. Health and safety Executive. Retrieved 5 July 2017.
  4. Lardner, Ronny. "Human Failure in control of work: Plugging Holes In The Swiss Cheese?" (PDF). www.keilcentre.co.uk. Retrieved 5 July 2017.
  5. "Permit to Work (Form)". Explosive Industry Group. Archived from the original on 2017-08-11. Retrieved 5 July 2017.
  6. National Institute of Building Sciences (April 2002). "Electronic Permitting Systems and How to Implement Them" (PDF). Washington, D.C.: U.S. Derpartment of Housing and Urban Development. Retrieved 2 January 2024.
  7. "Sinking of the USS Guitarro". Archived from the original on 2012-09-28. Retrieved 2012-09-23.
  8. "HMS Artemis - Lessons Learned". Archived from the original on 2008-05-24. Retrieved 2012-09-23.
  9. "Guidance on permit-to-work systems: A guide for the petroleum, chemical and allied industries" (PDF). Retrieved 2022-04-01.
  10. "Offshore Petroleum and Greenhouse Gas Storage (Safety) Regulations 2009". Federal Register of Legislation. Australian Government. Retrieved 5 July 2017.
  11. Staff. "Permit to Work Systems". Health and Safety Executive. Retrieved 5 July 2017.
  12. "Standard Number: 1910.147 - The control of hazardous energy (lockout/tagout)". Occupational Safety and Health Standards, Subpart: J, General Environmental Controls. Retrieved 5 July 2017.
  13. "European Industrial Gases Association - EIGA" (PDF). European Industrial Gases Association - EIGA.